Exist
Security checks across malware telemetry and agentic risk
Overview
This skill is a disclosed Exist health-data integration using ClawLink OAuth, with sensitive read access and clearly labeled write actions but no hidden code or scanner concerns.
Install only if you are comfortable connecting your Exist account through ClawLink and letting the agent read sensitive wellness data. Review the OAuth scopes during connection, and require explicit confirmation before any write action such as acquiring or releasing attribute ownership or incrementing tracked values.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
64/64 vendors flagged this skill as clean.
